CVE-2025-7962
ADVISORY - githubSummary
In Jakarta Mail 2.2 it is possible to preform a SMTP Injection by utilizing theĀ \r and \n UTF-8 characters to separate different messages.
Common Weakness Enumeration (CWE)
Improper Neutralization of Input Terminators
Improper Neutralization of Input Terminators
OWASP Top Ten 2017 Category A9 - Using Components with Known Vulnerabilities
Improper Neutralization of Input Terminators
OWASP Top Ten 2013 Category A9 - Using Components with Known Vulnerabilities
Improper Neutralization of Input Terminators
NIST
3.9
CVSS SCORE
6mediumGitHub
3.9
CVSS SCORE
6mediumDebian
-
Ubuntu
3.9
CVSS SCORE
7.5mediumGitLab
CVE-2025-7962
3.9
CVSS SCORE
7.5highAmazon
-
CVSS SCORE
N/AhighRed Hat
1.6
CVSS SCORE
5.3mediumChainguard
CGA-3gg3-5jpq-qfwq
-
Chainguard
CGA-633r-rj6v-hqhm
-
Chainguard
CGA-7v5w-p35g-9xp4
-
Chainguard
CGA-986w-5q35-929q
-
Chainguard
CGA-9p3g-h7rf-w2f3
-
Chainguard
CGA-g88v-rfvw-47pv
-
Chainguard
CGA-vgq2-c99p-cfq4
-
minimos
MINI-337p-94c9-7gvv
-
minimos
MINI-5pfw-hc94-749f
-
minimos
MINI-92fg-4wxx-jvq4
-
minimos
MINI-j3hx-53cj-rvrr
-
minimos
MINI-q6xf-hx77-wg5m
-
minimos
MINI-q9gc-39j2-87r4
-
minimos
MINI-wqwm-6g7c-p7jx
-